Missing User Warnings
Medium
- Confidence
- 93% confidence
- Finding
- The documentation repeatedly shows uploading local files such as PDFs and invoices to a third-party API, but it does not warn users that document contents will leave the local environment and may contain sensitive or regulated data. In a document-parsing skill, this omission is security-relevant because users may assume a local transformation rather than remote processing, increasing risk of inadvertent data disclosure.
